(642-504) Security networks with Cisco routers and switches (SNRS)**
· Deploying CSACS for windows server.
· Configuring the RADIUS and TACACS+ with CSACS.
· Introducing and configuring the Cisco IOS firewall context-based access- control.
· Configuring the Cisco IOS firewall authentication proxy.
· Configuring the Cisco IOS firewall intrusion prevention system.
· Mitigating Layer2 attacks.
· Configuring Cisco identity-based networking services.
· Configuring 802.1x port-based authentication.
· Cisco Layer2 security Best practices.
· Configuring Cisco IOS-Based VPN with pre-shared keys and certifications.
· Configuring Cisco easy VPN server.
· Using Cisco Router and security Device Manager.
(642-524) Securing Networks with ASA Foundation (SNAF)**
· Cisco Security Appliance Technology and Features.
· Cisco pix and ASA security appliance families.
· Getting started with Cisco Security appliances.
· Translations and connections.
· Access control lists and content filtering.
· Object grouping.
· Authentication, authorization and accounting.
· Switching and routing.
· Modular policy framework.
· Advance protocol handling.
· Cisco VPN configuration with pre-shared keys.
· Remote access VPN using Cisco Easy VPN.
· Configuring ASA for Web VPN.
· Configuring Transparent Firewall.
· Configuring Security contexts.
· Failover.
· Cisco security appliance Device manager.
· Getting started with AIP-SSM.
· Managing Security Appliances.
|
(642-532) Intrusion protection System (IPS)
· Cisco IPS overview.
· Cisco IPS configuration through CLI.
· Cisco IPS Device Manager.
· Basic Sensor Configuration.
· Basic Cisco IPS signature configuration.
· Cisco IPS signature Engine.
· Advanced signature configuration and sensor Tuning.
· Cisco IPS response configuration.
· Cisco IPS event monitoring and maintenance and tuning.
· Verifying System Configuration.
· Cisco IDSM.
· Cisco IDS network module for access routers.
· Capturing Network Traffic.
· Cisco IDS network module for access routers.
· Capturing Network Traffic.
(642-515) Securing Networks with ASA Advanced (SNAA)**
· Configure policy NAT based on traffic type.
· Configuring Advanced Dynamic routing using ASDM.
· Describe the layer 7 modular policy framework for the security appliance and how it is configured.
· Configuring Site to Site VPN using certificates.
· Configuring Remote Access VPN using Certificates.
· Implementing & Configuring Advanced SSL VPN.
· Configuring and Verify AIP-SSM and CSC-SSM.
· Configuring and Verify VPN QOS.
· Determine the necessary configuration for the ASA 5505 to be a VPN hardware client.
· Configure CSD and DAP for SSL VPN connections on the Cisco ASA.
· Identify the steps needed to configure, inspect, and filter traffic with the Content Security and Control SSM.
· Identify the steps needed to configure the security appliance to identify, alert, and defend against attacks.
** These CCSP exams expire in April 2011. |